Junglewise Threat Intelligence

CVE-2025-68279: PYSEC-2026-2040 - Weblate has an arbitrary file read via symbolic links

CVE-2025-68279 · Severity: low · CVSS 3.1 · Published 2026-07-07

Technologies: weblate (PyPI). Vendors: PyPI.

Executive brief

Weblate has an arbitrary file read via symbolic links

Affected products

  • PyPI weblate

Related threats